ThreatFox IOC Database

You are viewing the ThreatFox database entry for ip:port 94.140.112.138:80.

Database Entry


IOC ID:551126
IOC: 94.140.112.138:80
IOC Type :ip:port
Threat Type :botnet_cc
Malware: RedLine Stealer
Malware alias:RECORDSTEALER
Confidence Level : Confidence level is high (100%)
ASN:AS43513 NANO-AS
Country:- LV
First seen:2022-05-12 08:11:57 UTC
Last seen:never
UUID:3162c49d-d1cb-11ec-ae87-42010aa4000a
Reporter abuse_ch
Reward 5 credits from ThreatFox
Tags:RedLineStealer

Malware Samples


The table below documents recent malware samples observed that are associated with this indicator of compromise (IOC).

Time stamp (UTC)SHA256 hashBazaar
2022-05-12 15:21:37 8a9368e459952f9652f83bdbb2e834bc7227d2f22e7d07980ab489c1df3ea0a1
2022-05-12 08:56:56 836cce144e9ab3657a48548d95791d4ea64f3b6fbfe4232db450aff517a671b2
2022-05-12 08:12:00 a5eb164402f9da4286b958c7b5c2f185a3a5aab06a2f5412c3143f4148eabac3